5
CVSSv2

CVE-2010-0216

Published: 10/05/2011 Updated: 17/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

authenticate_ad_setup_finished.cfm in MediaCAST 8 and previous versions allows remote malicious users to discover usernames and cleartext passwords by reading the error messages returned for requests that use the UserID parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

inventivetec mediacast

Exploits

MediaCast versions 8 and below suffer from a vulnerability that allows for the disclosure of previously cached Active Directory credentials ...